googleprojectzero / ktrw
An iOS kernel debugger based on a KTRR bypass for A11 iPhones; works with LLDB and IDA Pro.
☆672Updated 2 years ago
Alternatives and similar repositories for ktrw:
Users that are interested in ktrw are comparing it to the libraries listed below
- an iOS kernel function hooking framework for checkra1n'able devices☆556Updated 3 years ago
- a Ghidra framework for iOS kernelcache reverse engineering☆348Updated 2 years ago
- An IDA Toolkit for analyzing iOS kernelcaches.☆287Updated 4 years ago
- Extract Binaries from Apple's Dyld Shared Cache☆431Updated last month
- An iOS kernel introspection tool.☆254Updated 5 years ago
- A collection of types & functions definitions useful for iOS/macOS binaries analysis.☆342Updated last week
- iOS <13.5 sandbox escape/entitlement 0day☆332Updated 6 months ago
- arm64 IOKit class dumper☆267Updated this week
- IDAPython loader to help with AArch64 iBoot, iBEC, and SecureROM reverse engineering☆260Updated 3 years ago
- CVE-2018-4280: Mach port replacement vulnerability in launchd on iOS 11.2.6 leading to sandbox escape, privilege escalation, and codesign…☆253Updated 6 years ago
- ☆373Updated 5 years ago
- iOS Kernel utilities☆243Updated 6 years ago
- Give me tfp0, I give you jelbrek☆262Updated 4 years ago
- kernel exploit for Apple iOS 13.X☆185Updated 4 years ago
- Automate extraction from iOS firmware files (.ipsw)☆201Updated 2 weeks ago
- iOS Reverse Engineering☆1,138Updated 6 years ago
- ARM Assembly Reference Manual for iOS, iPadOS, and macOS.☆210Updated 4 years ago
- Reversing the Apple sandbox☆235Updated last year
- Mach-O analysis library 💪☆355Updated last year
- Unstripped iOS Kernels☆218Updated 5 years ago
- ☆174Updated 4 years ago
- Lib kernel r/w☆191Updated 3 years ago
- untethered+unsandboxed code execution in iOS 11☆186Updated 5 years ago
- Utility to decrypt App Store apps on jailbroken iOS 11.x☆450Updated 4 years ago
- Compromising the macOS Kernel through Safari by Chaining Six Vulnerabilities☆405Updated 4 years ago
- iOS 11.1.2 (15B202) Jailbreak☆434Updated 3 years ago
- Decrypt iOS Apps and Mach-O binaries☆681Updated last year
- Useful resources for iOS hacking☆1,729Updated 11 months ago
- Write-up for alloc8 untethered bootrom exploit for iPhone 3GS☆379Updated 7 years ago
- ☆525Updated 5 years ago